Skip to main content

Bugs & Security Disclosures

This section contains published security advisories for vulnerabilities identified and remediated in the Nexudus platform. Each disclosure includes technical details, impact assessment, remediation steps, and timeline.

Reporting a Vulnerability

If you believe you have found a security vulnerability in Nexudus, please report it responsibly by emailing security@nexudus.com. Do not disclose vulnerabilities publicly until they have been addressed.

Advisories

Advisory IDTitleSeverityDate
NXD-2023-001Stripe Secret Key Exposure in DocumentationCritical2023-03-08
NXD-2025-001Unauthenticated Magic Link Endpoint Enables Email Reflection AttackHigh2025-05-23
NXD-2026-001Insecure Direct Object Reference (IDOR) VulnerabilitiesHigh2026-06-08